Privacy Policy
Last updated: 2026-07-10
This policy explains what personal data errorbar processes, why, and the rights you have over it. It reflects the GDPR and applies to everyone who uses the errorbar platform.
Data we process
- Account data — name, email, phone (optional), and authentication details (password hash or Google sign-in identifier, two-factor status).
- Usage & billing — API keys (stored hashed), token usage, wallet top-ups, and invoices. Card details are handled by Stripe and never stored by errorbar.
- Telemetry — content-free request metadata (model, latency, token counts, status) for observability and billing.
- Request content — prompts and completions are not stored by default. They are retained only if a workspace explicitly opts into request logging, for the retention window it chooses (up to its plan's ceiling: 14 days on Free, 30 on Pro, 90 on Scale, a year on Enterprise), and are scrubbed of detected secrets.
Why we process it (legal bases)
To provide the service and perform our contract with you (account, inference, billing); for our legitimate interests (security, fraud prevention, an audit trail); and to meet legal obligations (financial records). Optional request logging is processed on the basis of your consent, which you can withdraw at any time.
Where your data is processed
Inference runs in the EU by default, with US fallback only when EU GPU capacity is unavailable (EU region-pinning available on request). Account and analytics data are stored in the EU. See our sub-processors for the full list and their roles.
How long we keep it
Account data is kept while your account is active. Content-free telemetry follows your chosen window, up to the plan's ceiling (30 days on Free, 90 on Pro, a year on Scale, two on Enterprise); opt-in request content follows its own window; the audit log is retained for 2 years. When you delete your account we anonymize your personal data immediately and hard-delete the remainder after a 30-day grace period.
Your rights
You can access, export, correct, or erase your personal data, and object to or restrict certain processing. Self-service tools are in Dashboard → Settings → Account (“Download my data” and “Delete account”). For any other request, contact us and we'll respond within one month. You also have the right to complain to your local data-protection authority.
Cookies
We use only strictly-necessary cookies to sign you in and secure the platform — no analytics, advertising, or third-party tracking cookies. See our Cookie Policy for the full list.
Contact
Data controller: errorbar. Privacy enquiries: privacy@errorbar.ai.